CVE-2024-56742

In the Linux kernel, the following vulnerability has been resolved: vfio/mlx5: Fix an unwind issue in mlx5vf_add_migration_pages() Fix an unwind issue in mlx5vf_add_migration_pages(). If a set of pages is allocated but fails to be added to the SG table, they need to be freed to prevent a memory leak. Any pages successfully added to the SG table will be freed as part of mlx5vf_free_data_buffer().
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

07 Jan 2025, 22:19

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: vfio/mlx5: Se solucionó un problema de desenrollado en mlx5vf_add_migration_pages() Se solucionó un problema de desenrollado en mlx5vf_add_migration_pages(). Si se asigna un conjunto de páginas pero no se puede agregar a la tabla SG, es necesario liberarlas para evitar una pérdida de memoria. Cualquier página agregada correctamente a la tabla SG se liberará como parte de mlx5vf_free_data_buffer().
CWE CWE-401
References () https://git.kernel.org/stable/c/22e87bf3f77c18f5982c19ffe2732ef0c7a25f16 - () https://git.kernel.org/stable/c/22e87bf3f77c18f5982c19ffe2732ef0c7a25f16 - Patch
References () https://git.kernel.org/stable/c/769fe4ce444b646b0bf6ac308de80686c730c7df - () https://git.kernel.org/stable/c/769fe4ce444b646b0bf6ac308de80686c730c7df - Patch
References () https://git.kernel.org/stable/c/c44f1b2ddfa81c8d7f8e9b6bc76c427bc00e69d5 - () https://git.kernel.org/stable/c/c44f1b2ddfa81c8d7f8e9b6bc76c427bc00e69d5 - Patch
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
First Time Linux
Linux linux Kernel

29 Dec 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-29 12:15

Updated : 2025-01-07 22:19


NVD link : CVE-2024-56742

Mitre link : CVE-2024-56742

CVE.ORG link : CVE-2024-56742


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-401

Missing Release of Memory after Effective Lifetime